CVE-2017-8393
- EPSS 0.38%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to a global buffer over-read error because of an assumption made by code that runs for objcopy and strip, that SHT_REL/SHR_RELA sections are alw...
CVE-2017-8394
- EPSS 0.38%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 4 due to NULL pointer dereferencing of _bfd_elf_large_com_section. This vulnerability causes programs that conduct an...
CVE-2017-8395
- EPSS 0.47%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid write of size 8 because of missing a malloc() return-value check to see if memory had actually been allocated in the _bfd_generic_...
CVE-2017-8396
- EPSS 0.38%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 1 because the existing reloc offset range tests didn't catch small negative offsets less than the size of the reloc f...
CVE-2017-8397
- EPSS 0.41%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 1 and an invalid write of size 1 during processing of a corrupt binary containing reloc(s) with negative addresses. T...
CVE-2017-8398
- EPSS 0.41%
- Veröffentlicht 01.05.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 during dumping of debug information from a corrupt binary. This vulnerability causes programs that conduct an analysis of binary programs, such as objdump and readelf, to crash.
CVE-2017-7614
- EPSS 0.24%
- Veröffentlicht 09.04.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote attackers to cause a denial of service (application ...
CVE-2017-7299
- EPSS 0.26%
- Veröffentlicht 29.03.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an invalid read (of size 8) because the code to emit relocs (bfd_elf_final_link function in bfd/elflink.c) does not check the format of the input file bef...
CVE-2017-7300
- EPSS 0.41%
- Veröffentlicht 29.03.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an aout_link_add_symbols function in bfd/aoutx.h that is vulnerable to a heap-based buffer over-read (off-by-one) because of an incomplete check for inval...
CVE-2017-7301
- EPSS 0.41%
- Veröffentlicht 29.03.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an aout_link_add_symbols function in bfd/aoutx.h that has an off-by-one vulnerability because it does not carefully check the string offset. The vulnerabi...